logo

Kubernetes Pods Are Inheriting Too Many Permissions

ID: 977570f9-6cec-5b71-a35f-4d462782115c

STIX ID: report--977570f9-6cec-5b71-a35f-4d462782115c

Feed Name: Dark Reading

Threat Score
55/100

Date Published: 2025-04-23

Date Updated: 2026-05-05

Author: Becky Bracken

...
...

The SANS Institute report warns that default Kubernetes behavior allowing pods to inherit node permissions can enable cloud privilege escalation—via SSRF or malicious container images accessing instance metadata—potentially compromising entire clusters; it recommends adopting workload identity and OIDC federation across managed services (EKS, AKS, GKE) to enforce least privilege and reduce attack surface, with findings to be presented at RSAC 2025.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.